References

ARN Structure

Generic structure

arn:partition:service:region:account-id:resource-id
arn:partition:service:region:account-id:resource-type/resource-id
arn:partition:service:region:account-id:resource-type:resource-id
  • Partition: can be one of the following: aws, aws-cn (Chinese branch), aws-us-gov (US Gov restricted access)

  • Account-id: account id of the resource owner

  • Resource-id: id code of the specified resource or service

  • Resource-type: some resource categories allow more granularity when searching for a particular resource. For instance EC2 services can be subdivided into instances, images, security groups and so on

Services

The following repository contains a list of services grouped by resource. The list is generated from the AWS documentation

Regions

Code
Name

us-east-2

US East (Ohio)

us-east-1

US East (Virginia)

us-west-1

US West (N. California)

us-west-2

US West (Oregon)

ap-south-1

Asia Pacific (Mumbai)

ap-northeast-3

Asia Pacific (Osaka)

ap-northeast-2

Asia Pacific (Seoul)

ap-southeast-1

Asia Pacific (Singapore)

ap-southeast-2

Asia Pacific (Sydney)

ap-northeast-1

Asia Pacific (Tokyo)

ca-central-1

Canada (Central)

eu-central-1

Europe (Frankfurt)

eu-west-1

Europe (Ireland)

eu-west-2

Europe (London)

eu-west-3

Europe (Paris)

eu-north-1

Europe (Stockholm)

sa-east-1

South America (São Paulo)

Opt-in regions

Code
Name

af-south-1

Africa (Cape Town)

ap-east-1

Asia Pacific (Hong Kong)

ap-south-2

Asia Pacific (Hyderabad)

ap-southeast-3

Asia Pacific (Jakarta)

ap-southeast-4

Asia Pacific (Melbourne)

ca-west-1

Canada West (Calgary)

eu-south-1

Europe (Milan)

eu-south-2

Europe (Spain)

eu-central-2

Europe (Zurich)

il-central-1

Israel (Tel Aviv)

me-south-1

Middle East (Bahrain)

me-central-1

Middle East (UAE)

ID Prefixes

Prefix
Resource type

ACCA

Context-specific credential

AGPA

User group

AIDA

IAM user

AIPA

Amazon EC2 instance profile

AKIA

Access key

ANPA

Managed policy

ANVA

Version in a managed policy

APKA

Public key

AROA

Role

ASCA

Certificate

ASIA

Temporary (AWS STS) access key IDs use this prefix, but are unique only in combination with the secret access key and the session token.

Last updated